Product Security Engineer
2 weeks ago
Take a step forward and let Edenred surprise you.
Every day, we deliver innovative solutions to improve the life of millions of people, connecting employees, companies, and merchants all around the world.
We know there are hundred ways for you to grow. With us, you will expand your skills in a multicultural, challenging, and dynamic environment.
Dare to join Edenred and get ready to thrive in a global company that will offer you endless opportunities.
Edenred is all about meritocracy. You come as you are, and you contribute. Indeed, the Edenred Group recognizes, recruits and develops all talents and singularities.
We are committed to preventing all forms of discrimination and to providing all our candidates with equal opportunities regardless of their gender and gender expression, disability, origin, religious belief and sexual orientation or any other criteria.
About EDENRED
Edenred is a pioneer, a tech leader and the everyday companion for people at work across 45 countries.
Our 12,000 employees are committed to making the world of work a better place for all, one that is safer, more efficient and more user-friendly. At Edenred, our passion for customers, respect, imagination, simplicity and entrepreneurial spirit are our values. For anyone who needs to vibe in their professional life, we are the best place for you to work and grow.
The Edenred Digital Center (EDC) in Bucharest, Romania is Edenred Group's new Digital hub for strategic IT projects.
Context/Role
Edenred's Benefits & Engagement business line is searching for a dedicated
Product Security Engineer
.
You will cover multiple Business units (17) distributed in Europe and be responsible for assisting and guaranteeing Security by Design, Network Security and Secure Coding practices in projects. Align security tests and managing vulnerabilities with the Europe Business Units. You will communicate with other departments and business units within the organization, tracking and remediating issues.
Your role
You will be in charge of:
» Integrate and manage vulnerability management tools and scanners and application firewall policies.
» Integrate and roll out security tools (e.g., DLP, IAM/PAM) to enhance application security.
» Collaborate with third-party penetration testing teams, providing necessary support and facilitating the preparation and scoping of tests.
» Support full-stack vulnerability management efforts by coordinating with the Cyber Defense team within B&E Europe.
» Report and follow up on vulnerability remediation plans with stakeholders and development teams within the business units.
» Review and validate secure architecture and processes, ensuring security measures are embedded from the outset (Security by Design).
» Assist in defining and implementing application-layer security monitoring for business platforms.
» Maintain and control regional applications referential.
» Define the run book for each Change implementation and participate on the CAB meeting when required
» Support incident response capabilities, especially for incidents impacting Merchant/User/Clients applications.
» Engage with the Application Security Center of Expertise for support on security initiatives.
» Contribute to incident response efforts for application-layer vulnerabilities as needed, in coordination with Edenred CERT or the Cyber Defense team.
» Stay current on the latest security trends, vulnerabilities, and mitigation techniques.
» Ensure Quality Control and Lessons Learned of Security Actions on the other Security layers.
» Govern and Manage related security procedures, guidelines, diagrams and baselines.
This position requires rigorous coordination skills to cover the full scope composed of several number of assets across multiple countries.
You will be in direct contact with the different CPOs, CTOs and Infra leaders distributed in our Business units.
You will be supported by Group teams which provide expertise on the different cyber security domains.
This is a great opportunity to work with experts from different locations, with different skills, and a shared commitment to deploy & strengthen the Whole group security
This position reports directly to the B&E Europe security leader.
Your Responsibilities
» Partner with product and engineering teams to identify, assess, and mitigate security risks early in the design process
» Perform threat modeling and security design reviews for new and existing products
» Collaborate with development teams to integrate security best practices into the software development lifecycle
» Conduct threat modeling, security assessments, and code reviews to identify vulnerabilities
» Collaborate with DevOps to implement security automation in CI/CD pipelines (SAST, DAST, SCA, etc.)
» Work closely with engineering teams to remediate security issues and implement secure coding practices
» Perform security testing, including static and dynamic analysis
» Develop and deliver security training and awareness programs for developers
» Contribute to incident response related to product or application vulnerabilities
» Stay up to date with the latest security trends, vulnerabilities, and mitigation techniques
Your profile
» Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience
» 3+ years of experience in application security or product security roles
» Strong understanding of secure coding practices, secure design patterns and common vulnerabilities (e.g., OWASP Top 10)
» Experience performing or facilitating threat modeling and security assessments (STRIDE, PASTA, or equivalent)
» Strong understanding of security monitoring tools, with experience in static and dynamic analysis (DAST, SAST, and EDR technologies)
» Knowledge of cloud security, container security, or DevSecOps practices
» Excellent communication and interpersonal skills, with the ability to convey complex security concepts to technical and non-technical stakeholders
» Fluent English level (mandatory)
» Strong analytical and problem-solving skills and attention to detail
» Proactive, detail-oriented, and solution-driven, with strong organizational skills.
» Experience in matrix and international IT organizations is a plus; previous consulting experience is also appreciated.
Nice to have
» Relevant certifications: CISSP, GCSA, CSSLP, CEH, OSWE, or equivalent.
VIBE WITH US
Joining us means:
» Becoming part of a team that embraced the digitalization challenge and enjoys this transformation every day
» Living our values every day: passions for customers, respect, imagination, simplicity, entrepreneurial spirit.
Because:
» You will get exposure to various global cultures and teams
» You will be working with the newest technologies to build a new platform from scratch
» We offer you a very pleasant working environment, close to Bucharest city center
» We also have for you: meal tickets, holiday vouchers, health subscription, flexible hours, a
remote work policy 2d /week in the office
» Flexible benefits system, on-the-job training & e-learning platforms.
And we do not stop here
OUR COMMITMENT
Edenred is all about meritocracy. You come as you are, and you contribute. Indeed, the Edenred Group recognizes, recruits and develops all talents and singularities. We are committed to preventing all forms of dis crimination and to providing all our candidates with equal opportunities regardless of their gender and gender expression, disability, origin, religious belief and sexual orientation or any other criteria.
-
Information Security Engineer
2 weeks ago
Bucharest, Bucureşti, Romania Ahold Delhaize Full time 90,000 - 120,000 per yearYour new role and environment.We are looking for an experiencedInformation Security Engineerto strengthen our security posture and play a key role in both the first and second lines of defense. In this role, you will work closely with engineering, operations, and compliance teams to ensure our digital assets and data remain protected, while enabling the...
-
Security Automation Engineer
1 week ago
Bucharest, Bucureşti, Romania MSD Romania Full time €60,000 - €120,000 per yearJob DescriptionThe Cyber Defense AI & Automation team are seeking Security Automation Engineer to design and deliver enterprise-scale automation that reduces manual workload, suppresses noise, and accelerates cyber defense outcomes. This role is responsible for building secure, auditable, and guardrail-enforced automation workflows that operate across the...
-
Security Engineer, Observability
1 week ago
Bucharest, Bucureşti, Romania CrowdStrike Full time 40,000 - 80,000 per yearAs a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn't changed — we're here to stop breaches, and we've redefined modern security with the world's most advanced AI-native platform. Our customers span all industries, and they count on CrowdStrike to...
-
Senior Application Security Engineer
2 weeks ago
Bucharest, Bucureşti, Romania Arrise Full time €40,000 - €80,000 per yearDescription Position at ARRISE ABOUT US ARRISE sets the benchmark for service delivery and excellence in the iGaming industry. Playing a key role in the success of its clients, which include Pragmatic Play, a brand relied upon by the world's biggest online casinos for its cutting-edge products, ARRISE helps to deliver exceptional gaming experiences to...
-
Network/Security Engineer
2 weeks ago
Bucharest, Bucureşti, Romania cse Full time 40,000 - 60,000 per yearWe are looking for skilled engineers to join our team in the Bucharest office in delivering network and network security solutions to our global clients.Although we provide below a list of requirements and responsibilities, we are looking for talented and skilled colleagues.So if you feel comfortable discussing at a professional level about any of these...
-
Security Solutions Product Owner
2 weeks ago
Bucharest, Bucureşti, Romania Inetum Full time €30,000 - €60,000 per yearCompany Description Our Mission StatementDigital and human resources at the center of the sustainable development of our society.In a world of continuous transformation, accelerated by technological developments and societal challenges, it is necessary to adapt in an ongoing, agile way to meet the challenges of the future.About InetumInetum is a European...
-
Security Solutions Product Owner
2 weeks ago
Bucharest, Bucureşti, Romania Inetum Full time €40,000 - €80,000 per yearCompany DescriptionOur Mission StatementDigital and human resources at the center of the sustainable development of our society.In a world of continuous transformation, accelerated by technological developments and societal challenges, it is necessary to adapt in an ongoing, agile way to meet the challenges of the future.About InetumInetum is a European...
-
IT Security Engineer
2 weeks ago
Bucharest, Bucureşti, Romania Rompetrol (KMG International) Full time €40,000 - €80,000 per yearJob DescriptionWe are seeking a technically skilled and detail-orientedSecurity Engineer in Bucharestto lead the implementation and ongoing management of our Mobile Device Management (MDM) platform, while gradually expanding into Data Loss Prevention (DLP) initiatives.Rompetrol,part ofKMG International,is the place where thousands of minds and over 200...
-
Sr. Security Engineer, AppSec
1 week ago
Bucharest, Bucureşti, Romania 6Sense Full time 40,000 - 100,000 per yearOur Mission:6sense is on a mission to revolutionize how B2B organizations create revenue by predicting customers most likely to buy and recommending the best course of action to engage anonymous buying teams. 6sense Revenue AI is the only sales and marketing platform to unlock the ability to create, manage and convert high-quality pipeline to revenue.Our...
-
Security & Compliance Engineer
1 week ago
Bucharest, Bucureşti, Romania VEO Worldwide Services Full time €60,000 - €80,000 per yearWe are looking to hire aSecurity& Compliance Engineer to help our business, to be responsible to identify threats and vulnerabilities in system and software, to guarantee the availability, integrity, confidentiality and regulatory compliance of the information system and data.ResponsibilitiesPlanning, implementing, managing, monitoring, and upgrading...